IP Library › Granted Patent US 8,789,202
Granted Patent B2
US 8,789,202 · App. 12/622,386 · Granted Jul 22, 2014

Systems and methods for providing real time access monitoring of a removable media device

Inventors: Shlomo Touboul (Kefar Haim, IL); Sela Ferdman (Haifa, IL); Yonathan Yusim (Modiin, IL)
Assignee: CUPP Computing AS
G06F21/554
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,789,202
App. No.
12/622,386
Granted
Jul 22, 2014
Kind
B2
Abstract

A mobile security system connects to a mobile device and filters out attacks and malicious code. Using the mobile security system, a mobile device can be protected by greater security and possibly by the same level of security offered by a corporation, enterprise, or other entity associated with the mobile device.

Claims (33)

1. A method, comprising:

detecting a removable media device coupled to a digital device;

injecting redirection code into the digital device after detecting the removable media device is coupled to the digital device, the redirection code configured to intercept a first function call and configured to execute a second function call in place of the first function call;

intercepting, with the redirection code, a request for data on the removable media device;

determining whether to allow the intercepted request for data based on a security policy, the security policy implementing content analysis and risk assessment algorithms; and

providing requested data based on the determination.

2. The method of claim 1 , further comprising selecting the security policy from a plurality of security policies based, at least in part, on a password used to authenticate access to the removable media device.

3. The method of claim 1 , further comprising filtering content of the requested data.

4. The method of claim 3 , wherein filtering the content comprises scanning the data for malware.

5. The method of claim 3 , wherein filtering the content comprises scanning the data for confidential information.

6. The method of claim 1 , wherein injecting redirection code into the digital device comprises temporarily replacing one or more dynamic-link libraries (DLLs) within the digital device.

7. The method of claim 1 , wherein receiving injected redirection code into the digital device comprises enumerating user processes of the digital device and receiving injected Dynamic Link Libraries (DLLs) to the enumerated user processes.

8. The method of claim 1 , further comprising receiving a shut down command and removing the redirection code in response to the shut down command.

9. The method of claim 1 , further comprising removing the redirection code in response to a detection that the removable media device is no longer coupled to the digital device.

10. The method of claim 1 , further comprising intercepting, with the redirection code, a request to store data to the removable media device and determining whether to allow the request to store data based on the security policy.

11. A removable media device comprising:

a login engine configured to detect coupling to a digital device, the login engine further configured to inject redirection code into the digital device after detecting the coupling to the digital device, the redirection code being configured to intercept a first function call and configured to execute a second function call in place of the first function call; and

a controller configured to intercept a request for the data, determine whether to allow the request for the data based on a security policy, the security policy implementing content analysis and risk assessment algorithms, and provide requested data based on the determination.

12. The removable media device of claim 11 , wherein the controller is further configured to select the security policy from a plurality of security policies based, at least in part, on a password used to authenticate access to the removable media device.

13. The removable media device of claim 11 , wherein the controller is further configured to filter content of the requested data.

14. The removable media device of claim 13 , wherein filtering the content comprises scanning the data for malware.

15. The removable media device of claim 13 , wherein filtering the content comprises scanning the data for confidential information.

16. The removable media device of claim 11 , wherein the login engine is configured to temporarily replace one or more dynamic-link libraries (DLLs) within the digital device.

17. The removable media device of claim 11 , wherein the login engine is configured to enumerate user processes of the digital device and receive injected Dynamic Link Libraries (DLLs) to the enumerated user processes.

18. The removable media device of claim 11 , wherein the digital device is configured to receive a shut down command and remove the redirection code in response to the shut down command.

19. The removable media device of claim 11 , wherein the digital device is configured to remove the redirection code in response to a detection that the removable media device is no longer coupled to the digital device.

20. The removable media device of claim 11 , further comprising intercepting, with the redirection code, a request to store data and determining whether to allow the request to store data based on the security policy.

21. A non-transitory computer readable storage media comprising instructions, the instructions executable by a processor to perform a method, the method comprising:

detecting a removable media device coupled to a digital device;

injecting redirection code into the digital device after detecting the removable media device is coupled to the digital device, the redirection code configured to intercept a first function call and configured to execute a second function call in place of the first function call;

intercepting, with the redirection code, a request for data on the removable media device;

determining whether to allow the intercepted request for data based on a security policy, the security policy implementing content analysis and risk assessment algorithms; and

providing requested data based on the determination.

Assignments (2)
NUNC PRO TUNC ASSIGNMENT Recorded Jul 12, 2013
From: YOGGIE SECURITY SYSTEMS LTD.
To: CUPP COMPUTING AS
Reel/Frame 030791/0331 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded May 4, 2010
From: TOUBOUL, SHLOMO; FERDMAN, SELA; YUSIM, YONATHAN
To: YOGGIE SECURITY SYSTEMS LTD.
Reel/Frame 024334/0386 →
Continuity (2)
Provisional Application 61116210 · Nov 19, 2008
Related Publication 20100212012A1 · Aug 19, 2010